Skip to main content
POST
Python (SDK)

Authorizations

__Secure-mka1-auth-v2.session_token
string
cookie
required

Current Better Auth browser or device-login session

Headers

X-On-Behalf-Of
string

Optional external end-user identifier forwarded by the API gateway.

Body

application/json
audience
string<uri>
required

Exact configured HTTPS gateway audience that will accept the session-derived token.

Maximum string length: 2048

Response

Delegated session token minted

token
string
required
Pattern: ^mksd-.*
expiresAt
string<date-time>
required
Pattern: ^(?:(?:\d\d[2468][048]|\d\d[13579][26]|\d\d0[48]|[02468][048]00|[13579][26]00)-02-29|\d{4}-(?:(?:0[13578]|1[02])-(?:0[1-9]|[12]\d|3[01])|(?:0[469]|11)-(?:0[1-9]|[12]\d|30)|(?:02)-(?:0[1-9]|1\d|2[0-8])))T(?:(?:[01]\d|2[0-3]):[0-5]\d(?::[0-5]\d(?:\.\d+)?)?(?:Z))$